

Ratings for cipher strength

Question asked by QqqGg on Mar 27, 2013
Latest reply on Apr 2, 2013 by Ivan Ristić

Hello, I've been trying out your excellent SSL test tool to see what contributes to different ratings and I was curious as to why, in terms of cipher strength, TLS_RSA_WITH_AES_256_CBC_SHA (0x35) permits a 100% rating whereas TLS_RSA_WITH_AES_256_CBC_SHA256 (0x3d) caps at 80%?

Also some strange results in the 'best-rated' list: reporting as being TLS 1.2 only, yet I can connect to the host with a TLS 1.0 or TLS 1.1 browser - I'm guessing there is some trickery afoot!

Thank you.